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CLAIM AMENDMENTS 

This listing of claims will replace all prior versions, and listings, of claims in the 
application: 

1 . (Currently Amended) A method comprising: 

Storing at least one key within a tamper detect ion boundary of a circuit card 
coupled to a system bus of a host processor; 

encrypting, based upon th^at least one key, one or more respective portions of 
write data to generate one or more respective portions of encrypted write data to be 
stored in one or more locations in a_storag e coupled to the system bus, the encrypted 
write data generated by an input/output ( "I/Q"> processor on the circuit card : 

generating, based upon the one or more respective portions of the encrypted write 
data, check data to be stored in the storage; and 

selecting the one or more locations so as to permit the one or more respective 
portions .of the encrypted write data to be distributed among two or more storage devices 
comprised in the storage. 

2. (Previously Presented) The method of claim 1, wherein: 

the storage comprises a redundant array of independent disks (RAID); and 
the check data comprises one of parity data and a copy of the encrypted write 

data. 

3. (Currently amended) The method of claim 1, further comprising: 
atoring tho at loaat one k e y in memory; and 
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in response-to an attempt to tamper with the at least one key, erasing the at least 
one key^ from tho m e mory. 

4. (Previously Presented) The method of claim 1, further comprising: 
determining, based upon one or more credentials, whether to permit execution of 

one or more operations involving the storage. 

5. (Currently Amended) A method comprising: 
receiving a read reques tjfrom a host processor : 

retrieving one or more respective portions of [[the]] encrypted data from a 
plurality of storage devices comprised in [[the]]_a storag e_coupled to the host processor : 
and 

decrypting, based upon at least one ke yjstored within a tamper detection 
boundary of an encr yption device coupled to the host processor- one or more respective 
portions of the encrypted read data retrieved from &S.storage to generate one or more 
respective portions of read dat a, the read data generated bv an input/output ("VP") 
processor located wit hin the tamper detection boundarv_of_the encryption device . 

6. (Previously Presented) The method of claim 5, further comprising: 

prior to the decrypting of the one or more respective portions of the encrypted 
data, determining, based upon one or more credentials, whether the request is authorized. 

7. (Previously Presented) The method of claim 6, further comprising: 
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generating the at least one key based upon at least one of one or more tokens and 
one or more passwords. 



8. (Previously Presented) The method of claim 5, wherein: 
the storage also stores metadata; andthe method further comprises encrypting the 
metadata based upon the at least one key. 



9. (Original) The method of claim 8, whereimthe metadata comprises partition 
information. 

10, (Currently Amended) An apparatus comprising: 

circuitry to encrypt, based upon at least one ke y stored within a tamper detection 
boundary, one or more respective portions of write data to generate one or more 
respective portions of encrypted write data to be stored in one or more locations in 
storage; 

the circuitry also being capable of: 

generating, based upon the one or more respective portions of the 
encrypted write data, check data to be stored in the storage; and 

selecting the one or more locations so as to permit the one or more 
respective portions of the encrypted write data to be distributed among two or more 
storage devices comprised in the storage. 
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11. (Previously Presented) The apparatus of claim 10, wherein: 

the storage comprises a redundant array of independent disks (RAID); and 
the check data comprises one of parity data and a copy of the encrypted write 

data. 

12. (Previously Presented) The apparatus of claim 10, wherein: 

the circuitry is also capable of storing the at least one key in memory; and 
in response to an attempt to tamper with the at least one key, erasing the at least 
one key from the memory, 

13. (Previously Presented) The apparatus of claim 10, wherein: 

the circuitry is also capable of determming, based upon one or more credentials, 
whether to permit execution of one or more operations involving the storage. 

14. (Currently Amended) Ab The apparatus of claim 10, further comprising: 
circuitry to receive a read request, retrieve one or more respective portions of the 

encrypted data from [[a]]jhe plurality of storage devices comprised in the storage and 
decrypting, based upon at least one key, one or more respective portions of the encrypted 
read data retrieved from the storage to generate one or more respective portions of read 
data. 
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15. (Previously Presented) The apparatus of claim 14, wherein the circuitry is 
also capable of: 

prior to the decrypting of the one or more respective portions of the encrypted 
data, determining, based upon one or more credentials, whether the request is authorized. 

16. (Previously Presented) The apparatus of claim 15, wherein: 

the circuitry is also capable of generating the at least one key based upon at least 
one of one or more tokens and one or more passwords. 

17. (Previously Presented) The apparatus of claim 14, wherein: 

the storage also stores metadata; and the circuitry is also capable of encrypting 
the metadata based upon the at least one key. 

18. (Original) The apparatus of claim 17, wherein: 
the metadata comprises partition information. 

19. (Currently Amended) An article comprising a storage medium having stored 
therein instructions that when executed by a machine result in the following: 

storing at least one kev within a tamper detection boundary of a circuit card 
COUDled to a SVStem bus of a host p rnceaanr; 

encrypting, based upon Jbe_ at least one key, one or more respective portions of 
write data to generate one or more respective portions of encrypted write data to be 
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stored in one or more locations in a storag e coupled to the system bus, the encryp ted 
write data generated by an input/outpu t ( u I/Cn processor on the circuit card : 

generating, based upon the one or more respective portions of the encrypted write 
data, check data to be stored in the storage; and 

selecting the one or more locations so as to permit the one or more respective 
portions of the encrypted write data to be distributed among two or more storage devices 
comprised in the storage. 

20. (Previously Presented) The article of claim 19, wherein: 

the storage comprises a redundant array of independent disks (RAID); and 
the check data comprises one of parity data and a copy of the encrypted write 

data. 

21. (Currently Amended) The article of claim 19, wherein the instructions when 
executed by the machine also result in: 

storing the at least one key in memory; and 

in response to an attempt to tamper with the at least one key, erasing the at least 
one key^ from the memory. 

22. (Previously Presented) The article of claim 19, wherein the instructions 
when executed by the machine also result in: 

determining, based upon one or more credentials, whether to permit execution of 
one or more operations involving the storage. 
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23. (Currently Amended) An article comprising a storage medium having stored 
therein instructions that when executed by a machine result in the following: 

receiving a read request from a host processor ; 

retrieving one or more respective portions of [[the]] encrypted data firom a 
plurality of storage devices comprised in [[the]]_a storag e coupled to the hos t p^^- 
and 

decrypting, based upon at least one ke y_stored within a tamper detection 
boundary of an encryption device c oupled to the host processor , one or more respective 
portions of the encrypted read data retrieved from Jhe storage to generate one or more 
respective portions of read dat a, the read data gen erated bv an input/output processor 
located within the tam per detection boundary of the encryption device . 

24. (Previously Presented) The article of claim 23, wherein the instructions 
when executed by the machine also result in: 

prior to the decrypting of the one or more respective portions of the encrypted 
data, determining, based upon one or more credentials, whether the request is authorized. 

25. (Previously Presented) The article of claim 24, wherein the instructions 
when executed by the machine also result in: 

generating the at least one key based upon at least one of one or more tokens and 
One or more passwords. 
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26. (Previously Presented) The article of claim 23 B wherein: 
the storage also stores metadata; and 

the instructions when executed by the machine also result in encrypting the 
metadata based upon the at least one key. 

27. (Original) The article of claim 26, wherein: 
the metadata comprises partition information. 

28. (Currently Amended) A system comprising: 

a circuit board comprising a circuit card slot and a circuit card that is capable of 
beit^g inserted into the circuit card slot, the circuit card comprising circuity, the circuitry 
being capable of encrypting,, based upon at least one key, one or more respective 
portions of write data to generate one or more respective portions of encrypted write data 
to be stored in one or moref locations in storage[[;]J 4 
wherein the circuitry also-feeiag incapable of: 

generating, based upon the one or more respective portions of the 
encrypted write data, check data to be stored in the storage; and 

selecting the one or more locations so as to peraiit the one or more 
respective portions of the encrypted write data to be distributed among 
two or more storage devices comprised in the storage[[.]] A 
wherein the circuit comprises; 

an input/output (VCH pro cessor, and 
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non-volatile memory that is capable of storin g th e at least one kev_ 
wherein the circuitry is capable o f detecting-an attempt to tamper with the 
at tost one frey, a nd in response to the attempt erasing the at least one 
key from the memory. 

29. (Cancelled) 

30. (Currently Amended) The system of claim [[29TL28, wherein[[:]] the circuit 
board also comprises: 

a host processor coupled to the circuit card slot via a bus[[, and]]; 
one or more token memories to store one or more tokens; and 
additional circuitry to read one or more additional tokens stored in a removable 
token memory after the removable token memory is inserted into a token reader. 

31. -33. (Cancelled) 
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